High severity7.8NVD Advisory· Published Oct 28, 2021· Updated Jun 17, 2026
CVE-2021-3579
CVE-2021-3579
Description
Incorrect Default Permissions vulnerability in the bdservicehost.exe and Vulnerability.Scan.exe components as used in Bitdefender Endpoint Security Tools for Windows, Total Security allows a local attacker to elevate privileges to NT AUTHORITY\SYSTEM This issue affects: Bitdefender Endpoint Security Tools for Windows versions prior to 7.2.1.65. Bitdefender Total Security versions prior to 7.2.1.65.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- cpe:2.3:a:bitdefender:endpoint_security_tools:*:*:*:*:*:windows:*:*Range: <7.2.1.65
cpe:2.3:a:bitdefender:total_security:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:bitdefender:total_security:*:*:*:*:*:*:*:*range: <7.2.1.65
- (no CPE)range: <7.2.1.65
- (no CPE)range: unspecified
- Range: <7.2.1.65
- Range: unspecified
Patches
Vulnerability mechanics
References
2- www.bitdefender.com/support/security-advisories/incorrect-default-permissions-vulnerability-in-bdservicehost-exe-and-vulnerability-scan-exe-va-9848/nvdVendor Advisory
- www.zerodayinitiative.com/advisories/ZDI-21-1277/nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.